Contact Form by BestWebSoft – Advanced Contact Us Form Builder for WordPress, CVE-2025-63056
- CVE, Research URL
- Home page URL
- Published on
- Dec 09, 2025
- Research Description
- Missing Authorization vulnerability in bestwebsoft Contact Form by BestWebSoft contact-form-plugin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Form by BestWebSoft: from n/a through <= 4.3.5.
- Affected versions
-
max 4.3.5.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| YITH Slider for page builders (CVE-2025-68581) , Jan 09, 2026 |